CVE-2023-25680: IBM Robotic Process Automation
Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.
IBM Robotic Process Automation 21.0.1 through 21.0.5 is vulnerable to insufficiently protecting credentials. Queue Provider credentials are not obfuscated while editing queue provider details. IBM X-Force ID: 247032.
Affected products
- IBM Robotic Process Automation: before 21.0.6 (fixed in 21.0.6)
- IBM Robotic Process Automation As A Service: before 21.0.6 (fixed in 21.0.6)
- IBM Robotic Process Automation For Cloud Pak: from 21.0.1, before 21.0.6 (fixed in 21.0.6)
Published 2023-03-15. Last modified 2026-06-17.